Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2024-48008


Dell RecoverPoint for Virtual Machines 6.0.x contains a OS Command Injection vulnerability. An Low privileged remote attacker could potentially exploit this vulnerability leading to information disclosure ,allowing of unintended actions like reading files that may contain sensitive information


Published

2024-12-13T14:15:22.273

Last Modified

2025-02-04T15:53:30.747

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 5.3 (MEDIUM)

Weaknesses
  • Type: Secondary
    CWE-11
  • Type: Primary
    CWE-78

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application dell recoverpoint_for_virtual_machines 6.0 Yes
Application dell recoverpoint_for_virtual_machines 6.0 Yes

References